blob: 67a7e6729048df4771ade54ee2feaba9f7f490be [file] [log] [blame]
[Created by: generate-serverauth-ec-ku-digitalsignature.py]
Certificate chain with 1 intermediate, a trusted root, and a target
certificate for serverAuth that has only digitalSignature.
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 1 (0x1)
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Intermediate
Validity
Not Before: Jan 1 12:00:00 2015 GMT
Not After : Jan 1 12:00:00 2016 GMT
Subject: CN=Target
Subject Public Key Info:
Public Key Algorithm: id-ecPublicKey
Public-Key: (384 bit)
pub:
04:5d:dd:e7:4e:0b:94:b3:49:ca:2e:ef:b5:84:f5:
62:47:73:82:97:14:09:56:42:b5:29:87:38:8b:b1:
99:f4:a7:07:d4:d9:e0:03:74:40:9f:d2:e4:34:ba:
89:75:27:3b:a9:a0:1a:8a:25:19:f2:af:b6:9e:3e:
8c:0e:ee:f1:11:00:b4:a8:dc:49:85:bf:2b:55:6f:
ec:83:24:fe:8d:81:2b:e7:da:fa:88:05:99:15:ee:
1c:2d:73:df:09:79:70
ASN1 OID: secp384r1
X509v3 extensions:
X509v3 Subject Key Identifier:
20:1C:41:C2:17:E4:79:4A:12:01:6E:24:85:49:38:39:DE:64:93:FF
X509v3 Authority Key Identifier:
keyid:42:FF:88:7A:D0:CD:5A:B3:39:5A:71:B9:EE:C4:8B:31:37:B4:79:39
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Intermediate.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Intermediate.crl
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
TLS Web Server Authentication
Signature Algorithm: sha256WithRSAEncryption
7e:83:56:3b:27:c1:a1:b4:fb:1e:11:f6:81:c5:44:a4:3e:66:
3d:00:b9:fa:c7:5d:28:72:0a:ab:96:31:33:ef:5a:49:59:d5:
e1:db:a0:04:e6:30:79:f2:94:83:2f:36:d8:3f:ff:c0:5b:09:
14:5b:85:3a:ef:0b:d4:7e:cb:9c:d7:55:4f:7a:3c:7e:53:b7:
42:62:60:e6:8e:35:24:10:2d:c8:9a:33:0d:ad:2f:f7:7e:06:
1b:bf:54:7e:09:7d:a2:0e:5a:7e:8a:20:f7:0f:f7:0d:4c:e5:
fa:98:ce:db:b2:88:ac:15:f5:00:d9:b6:c0:21:ff:98:71:af:
ac:88:d4:8a:c1:18:2a:2c:b5:6d:05:ff:be:b7:45:b3:fd:90:
37:fa:7a:ba:58:ca:c4:38:db:d3:bb:74:a6:f8:1f:c4:84:cb:
97:cf:83:5f:6a:18:9e:42:41:ad:e6:69:66:f8:f4:9d:0d:84:
b8:58:01:98:06:1b:2d:c0:2a:3e:e5:73:4a:ea:8c:99:81:5e:
51:38:74:18:f5:2a:a4:c8:d3:7e:37:a3:b8:40:39:a7:77:0d:
51:ce:b2:68:e7:4b:c3:4f:74:e8:bf:c6:bc:75:24:73:d2:4c:
8d:fd:30:24:12:62:06:5d:28:ad:1c:0f:0c:fe:7c:4f:b2:f9:
b8:26:03:a9
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 2 (0x2)
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Jan 1 12:00:00 2015 GMT
Not After : Jan 1 12:00:00 2016 GMT
Subject: CN=Intermediate
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:bf:63:9e:47:6f:ce:09:cd:c9:87:ea:4c:5b:5e:
a4:34:45:e2:07:d3:88:5f:94:1f:d8:8c:9f:ca:bf:
c4:65:10:08:4c:23:3d:23:62:ca:f1:87:23:5f:bb:
62:67:1c:cc:42:0c:d4:63:0d:63:11:bc:63:72:9d:
35:36:89:42:11:d6:b4:11:99:d8:80:3e:ad:07:59:
cd:4d:85:f4:02:e4:52:79:17:f0:ff:57:ea:24:ce:
bd:6a:0d:53:a3:38:57:87:eb:3f:5f:23:d1:b3:f8:
28:85:58:97:a9:e9:af:75:f5:4c:96:9a:e2:fd:ef:
46:81:cc:e0:cd:5d:17:6f:09:99:ea:33:9e:5f:75:
ac:b5:da:0a:2f:3f:74:ab:d8:0f:5a:da:18:c7:ef:
8a:2d:46:16:70:ee:fe:7e:62:1e:bc:4c:9b:0a:70:
bb:3d:8b:f4:6e:74:38:33:d1:49:c1:b9:82:8b:51:
f6:fa:f1:b3:b6:5a:f5:8e:a7:33:24:6e:64:42:77:
f1:c1:4c:4c:20:f8:a2:6d:95:6e:db:11:db:36:09:
34:c6:21:ee:2c:88:7f:75:cc:bd:12:40:65:ab:b9:
a6:52:09:d1:52:79:b5:70:5a:7c:e3:54:85:e0:19:
15:c7:03:74:ef:48:da:f3:0a:cb:47:67:fd:58:b2:
75:bd
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
42:FF:88:7A:D0:CD:5A:B3:39:5A:71:B9:EE:C4:8B:31:37:B4:79:39
X509v3 Authority Key Identifier:
keyid:FA:5A:BB:C1:33:4C:62:35:DA:F1:B3:11:DC:51:75:19:3D:00:57:54
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
10:8d:6e:67:0b:07:d8:67:c4:82:e6:0e:e3:6c:e2:c5:01:9b:
a0:4f:f3:57:fd:61:bc:5a:55:54:a5:ee:b0:63:84:84:da:b7:
23:cd:81:1a:16:54:c4:ab:ea:87:18:9e:66:c8:0c:61:07:21:
01:8a:6c:75:5d:01:70:ea:e7:da:44:38:71:5c:d5:51:57:86:
44:6d:fd:c9:fc:05:f6:d7:9b:5a:a9:fb:e0:27:8d:a8:74:dc:
cb:cf:aa:35:9f:69:cd:2c:9e:91:65:ec:aa:26:c0:0b:c9:5e:
92:a5:8d:47:8f:cf:ab:e2:d0:56:77:be:d6:f0:69:26:bf:a9:
4e:e1:9f:c1:b2:81:50:9e:6c:7d:d2:82:91:ad:ae:92:d4:fb:
f0:b6:b7:53:34:5b:c1:41:2a:a2:45:fb:c1:e1:ad:1e:ce:2b:
19:48:02:dd:0c:d2:49:1e:02:e1:f8:92:0e:bb:44:8c:f2:5e:
cd:3c:96:56:b9:da:a5:df:2f:e4:d7:2d:a8:8e:a0:46:83:a1:
3f:12:55:c4:73:8b:f3:85:4f:05:36:a3:5c:8b:aa:bd:a3:0f:
7f:8d:9c:36:01:53:12:32:75:c3:10:5d:a0:e1:4e:51:7c:8d:
62:58:fd:c6:51:23:98:9d:38:b6:97:de:94:73:e9:46:9f:dc:
1c:92:96:b2
-----BEGIN CERTIFICATE-----
MIIDbTCCAlWgAwIBAgIBAjANBgkqhkiG9w0BAQsFADAPMQ0wCwYDVQQDDARSb290
MB4XDTE1MDEwMTEyMDAwMFoXDTE2MDEwMTEyMDAwMFowFzEVMBMGA1UEAwwMSW50
ZXJtZWRpYXRlMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2OeR2/O
Cc3Jh+pMW16kNEXiB9OIX5Qf2Iyfyr/EZRAITCM9I2LK8YcjX7tiZxzMQgzUYw1j
Ebxjcp01NolCEda0EZnYgD6tB1nNTYX0AuRSeRfw/1fqJM69ag1TozhXh+s/XyPR
s/gohViXqemvdfVMlpri/e9GgczgzV0XbwmZ6jOeX3WstdoKLz90q9gPWtoYx++K
LUYWcO7+fmIevEybCnC7PYv0bnQ4M9FJwbmCi1H2+vGztlr1jqczJG5kQnfxwUxM
IPiibZVu2xHbNgk0xiHuLIh/dcy9EkBlq7mmUgnRUnm1cFp841SF4BkVxwN070ja
8wrLR2f9WLJ1vQIDAQABo4HLMIHIMB0GA1UdDgQWBBRC/4h60M1aszlacbnuxIsx
N7R5OTAfBgNVHSMEGDAWgBT6WrvBM0xiNdrxsxHcUXUZPQBXVDA3BggrBgEFBQcB
AQQrMCkwJwYIKwYBBQUHMAKGG2h0dHA6Ly91cmwtZm9yLWFpYS9Sb290LmNlcjAs
BgNVHR8EJTAjMCGgH6AdhhtodHRwOi8vdXJsLWZvci1jcmwvUm9vdC5jcmwwDgYD
VR0PAQH/BAQDAgEGMA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEB
ABCNbmcLB9hnxILmDuNs4sUBm6BP81f9YbxaVVSl7rBjhITatyPNgRoWVMSr6ocY
nmbIDGEHIQGKbHVdAXDq59pEOHFc1VFXhkRt/cn8BfbXm1qp++Anjah03MvPqjWf
ac0snpFl7KomwAvJXpKljUePz6vi0FZ3vtbwaSa/qU7hn8GygVCebH3SgpGtrpLU
+/C2t1M0W8FBKqJF+8HhrR7OKxlIAt0M0kkeAuH4kg67RIzyXs08lla52qXfL+TX
LaiOoEaDoT8SVcRzi/OFTwU2o1yLqr2jD3+NnDYBUxIydcMQXaDhTlF8jWJY/cZR
I5idOLaX3pRz6Uaf3BySlrI=
-----END CERTIFICATE-----
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 1 (0x1)
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=Root
Validity
Not Before: Jan 1 12:00:00 2015 GMT
Not After : Jan 1 12:00:00 2016 GMT
Subject: CN=Root
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:d5:9d:5f:8f:72:c5:3d:47:55:31:80:57:e0:cc:
b7:6f:6b:7c:f4:a2:f0:d9:a7:98:d1:a5:b5:21:09:
06:89:e2:19:f6:4c:77:c2:78:2c:fe:05:fd:35:95:
01:a1:63:e5:51:c0:3d:dc:63:8b:6d:d9:8d:c9:bf:
c9:0e:ff:41:5d:2d:55:85:9e:26:31:d4:a7:f4:22:
59:0e:17:1b:a2:27:fb:de:3a:ed:b3:28:6a:b0:cc:
00:04:5e:02:a7:0b:ae:f3:f0:2f:71:a4:ea:13:3c:
2c:62:a5:91:87:cd:a6:4b:16:96:78:6c:e5:61:27:
72:b4:06:f0:27:3e:6f:f8:c8:00:7a:0a:1a:c2:5c:
ec:1e:22:52:eb:15:11:b2:ed:d8:c9:1d:2a:94:93:
66:3c:51:60:3b:19:06:7d:c6:65:b4:fe:0c:40:1a:
63:be:70:a4:a7:9d:1e:b1:bd:04:f0:af:cc:0f:a2:
fc:e2:51:42:4c:60:e7:ae:53:30:c2:0d:74:d7:bd:
ef:7f:93:2e:6b:b2:d4:ff:76:ad:97:c6:b6:97:24:
61:cc:6c:08:c1:5e:a4:e0:2f:ab:aa:a8:44:ef:2e:
6d:50:f9:79:9e:87:58:44:81:1b:22:c6:50:7b:58:
64:7a:2b:fc:43:4d:9a:51:1a:1b:0d:9b:4a:c7:ef:
51:2f
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
FA:5A:BB:C1:33:4C:62:35:DA:F1:B3:11:DC:51:75:19:3D:00:57:54
X509v3 Authority Key Identifier:
keyid:FA:5A:BB:C1:33:4C:62:35:DA:F1:B3:11:DC:51:75:19:3D:00:57:54
Authority Information Access:
CA Issuers - URI:http://url-for-aia/Root.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://url-for-crl/Root.crl
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
Signature Algorithm: sha256WithRSAEncryption
7b:69:d5:24:1c:3f:8d:ab:7c:87:35:0c:38:68:6a:5a:70:25:
ec:43:8e:e5:01:d4:df:95:29:17:da:64:8b:5a:99:3c:e1:77:
5b:00:a2:6d:03:21:fc:30:75:30:3b:84:ff:19:e7:8f:27:47:
ce:29:18:17:6d:9d:95:b0:f5:ab:f7:10:ee:40:27:b3:f6:53:
60:77:29:cd:4d:d9:29:7a:af:73:60:6d:10:9f:75:79:d2:b1:
4f:13:b5:44:e1:9c:13:8f:74:cd:4f:46:d2:f1:c1:7f:ed:40:
b6:7a:da:0a:b1:d7:02:e5:11:0a:78:e6:94:b1:21:e8:46:33:
e6:15:6a:25:4a:ee:6d:0a:d3:8d:e0:6a:9f:a3:94:c4:c1:77:
fe:2f:79:03:91:3f:78:8f:3c:2e:8a:b0:0a:35:c9:2a:d7:04:
9b:45:6e:8e:13:52:0c:67:b0:37:a3:74:df:fb:cb:28:35:a7:
75:40:8e:7e:12:34:09:b8:24:93:cf:61:2f:a8:f8:73:9e:a1:
bc:b6:9a:7d:7f:49:64:ee:a0:02:41:5f:43:af:ab:8a:2a:15:
c8:bd:1d:a0:80:5f:da:59:19:20:ef:f4:df:a8:bf:2c:e7:77:
6b:63:77:c6:a8:e1:59:1e:8f:63:b6:0e:66:aa:1e:11:61:91:
7d:20:75:b6
-----BEGIN TRUST_ANCHOR_UNCONSTRAINED-----
MIIDZTCCAk2gAwIBAgIBATANBgkqhkiG9w0BAQsFADAPMQ0wCwYDVQQDDARSb290
MB4XDTE1MDEwMTEyMDAwMFoXDTE2MDEwMTEyMDAwMFowDzENMAsGA1UEAwwEUm9v
dDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANWdX49yxT1HVTGAV+DM
t29rfPSi8NmnmNGltSEJBoniGfZMd8J4LP4F/TWVAaFj5VHAPdxji23Zjcm/yQ7/
QV0tVYWeJjHUp/QiWQ4XG6In+9467bMoarDMAAReAqcLrvPwL3Gk6hM8LGKlkYfN
pksWlnhs5WEncrQG8Cc+b/jIAHoKGsJc7B4iUusVEbLt2MkdKpSTZjxRYDsZBn3G
ZbT+DEAaY75wpKedHrG9BPCvzA+i/OJRQkxg565TMMINdNe973+TLmuy1P92rZfG
tpckYcxsCMFepOAvq6qoRO8ubVD5eZ6HWESBGyLGUHtYZHor/ENNmlEaGw2bSsfv
US8CAwEAAaOByzCByDAdBgNVHQ4EFgQU+lq7wTNMYjXa8bMR3FF1GT0AV1QwHwYD
VR0jBBgwFoAU+lq7wTNMYjXa8bMR3FF1GT0AV1QwNwYIKwYBBQUHAQEEKzApMCcG
CCsGAQUFBzAChhtodHRwOi8vdXJsLWZvci1haWEvUm9vdC5jZXIwLAYDVR0fBCUw
IzAhoB+gHYYbaHR0cDovL3VybC1mb3ItY3JsL1Jvb3QuY3JsMA4GA1UdDwEB/wQE
AwIBBjAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQB7adUkHD+N
q3yHNQw4aGpacCXsQ47lAdTflSkX2mSLWpk84XdbAKJtAyH8MHUwO4T/GeePJ0fO
KRgXbZ2VsPWr9xDuQCez9lNgdynNTdkpeq9zYG0Qn3V50rFPE7VE4ZwTj3TNT0bS
8cF/7UC2etoKsdcC5REKeOaUsSHoRjPmFWolSu5tCtON4Gqfo5TEwXf+L3kDkT94
jzwuirAKNckq1wSbRW6OE1IMZ7A3o3Tf+8soNad1QI5+EjQJuCSTz2EvqPhznqG8
tpp9f0lk7qACQV9Dr6uKKhXIvR2ggF/aWRkg7/TfqL8s53drY3fGqOFZHo9jtg5m
qh4RYZF9IHW2
-----END TRUST_ANCHOR_UNCONSTRAINED-----
150302120000Z
-----BEGIN TIME-----
MTUwMzAyMTIwMDAwWg==
-----END TIME-----
SUCCESS
-----BEGIN VERIFY_RESULT-----
U1VDQ0VTUw==
-----END VERIFY_RESULT-----
serverAuth
-----BEGIN KEY_PURPOSE-----
c2VydmVyQXV0aA==
-----END KEY_PURPOSE-----